
Packet filtering
52
System Administrator’s Guide
Rules
Once addresses and services have been defined, you can create filter rules. Click
Rules
. Any rules that have already been defined will be displayed.
Click
New
to add a new filter rule, or select an existing rule and click
Modify
.
Note:
The first matching rule will determine the action for the network traffic, so the
order of the rules is important. You can use the buttons on the Packet Filtering page
to change the order. The rules are evaluated top to bottom as displayed on the
Packet Filtering page.
Action
Specifies what to do if the rule matches.
•
Accept means to allow the traffic.
•
Drop means to disallow the traffic.
•
Reject means to disallow the traffic, but also send an ICMP port unreachable
message to the source IP address.
•
None means to perform no action for this rule. This is useful for a rule that logs
packets, but performs no other action. It can also be used to temporarily disable
a rule.
Incoming Interface
The interface/network port that the Shiva VPN Gateway received the network traffic
on.
Summary of Contents for SHIVA 1100
Page 38: ...QoS traffic shaping 38 System Administrator s Guide...
Page 44: ...DHCP relay 44 System Administrator s Guide...
Page 66: ...Access control 66 System Administrator s Guide...
Page 122: ...Technical Support 122 System Administrator s Guide...
Page 132: ...132 System Administrator s Guide...